In the Linux kernel, the following vulnerability has been resolved:
crypto: aead - Fix reqsize handling
Commit afddce13ce81d ("crypto: api - Add reqsize to crypto_alg") introduced cra_reqsize field in crypto_alg struct to replace type specific reqsize fields. It looks like this was introduced specifically for ahash and acomp from the commit description as subsequent commits add necessary changes in these alg frameworks.
However, this is being recommended for use in all crypto algs instead of setting reqsize using crypto_*_set_reqsize(). Using cra_reqsize in aead algorithms, hence, causes memory corruptions and crashes as the underlying functions in the algorithm framework have not been updated to set the reqsize properly from cra_reqsize. [1]
Add proper set_reqsize calls in the aead init function to properly initialize reqsize for these algorithms in the framework.
[1]: https://gist.github.com/Pratham-T/24247446f1faf4b7843e4014d5089f6b
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-aws-64kUpgrade linux-image-virtual-hwe-24.04Upgrade linux-image-6.17.0-1010-azureUpgrade linux-image-6.17.0-1009-aws-64kUpgrade linux-image-6.17.0-1009-oracleUpgrade linux-image-generic-6.17Upgrade linux-image-virtual-6.17Upgrade linux-image-realtime-hwe-24.04Upgrade linux-image-azure-6.17Upgrade linux-image-oracle-64kUpgrade linux-image-oem-24.04Upgrade linux-image-realtime-6.17Upgrade linux-image-raspi-6.17Upgrade linux-image-oem-24.04dUpgrade linux-image-generic-64kUpgrade linux-image-azureUpgrade linux-image-virtualUpgrade linux-image-aws-6.17Upgrade linux-image-oem-24.04aUpgrade linux-image-gcpUpgrade linux-image-genericUpgrade linux-image-gcp-64k-6.17Upgrade linux-image-oem-24.04bUpgrade linux-image-gcp-6.17Upgrade linux-image-generic-64k-hwe-24.04Upgrade linux-image-6.17.0-19-generic-64kUpgrade linux-image-6.17.0-1010-raspiUpgrade linux-image-oracle-6.17Upgrade linux-image-aws-64k-6.17Upgrade linux-image-6.17.0-1009-gcp-64kUpgrade linux-image-awsUpgrade linux-image-6.17.0-1017-oemUpgrade linux-image-6.17.0-1009-gcpUpgrade linux-image-oracleUpgrade linux-image-generic-hwe-24.04Upgrade linux-image-realtimeUpgrade linux-image-6.17.0-1009-awsUpgrade linux-image-generic-64k-6.17Upgrade linux-image-oracle-64k-6.17Upgrade linux-image-raspiUpgrade linux-image-oem-24.04cUpgrade linux-image-gcp-64kUpgrade linux-image-6.17.0-1009-oracle-64kUpgrade linux-image-oem-6.17Upgrade linux-image-6.17.0-19-genericUpgrade linux-image-6.17.0-1008-realtime | Mar 17, 2026 | Dec 24, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub